Jan Pokorný discovered that Pacemaker incorrectly handled client-server authentication. A local attacker could possibly use this issue to escalate privileges. (CVE-2018-16877)
Jan Pokorný discovered that Pacemaker incorrectly handled certain verifications. A local attacker could possibly use this issue to cause a denial of service. (CVE-2018-16878)
Jan Pokorný discovered that Pacemaker incorrectly handled certain memory operations. A local attacker could possibly use this issue to obtain sensitive information in log outputs. This issue only applied to Ubuntu 18.04 LTS, Ubuntu 18.10, and Ubuntu 19.04. (CVE-2019-3885)
{ "availability": "No subscription required", "binaries": [ { "libcrmcommon3": "1.1.14-2ubuntu1.6", "libpe-status10": "1.1.14-2ubuntu1.6", "pacemaker-dbgsym": "1.1.14-2ubuntu1.6", "libpengine-dev": "1.1.14-2ubuntu1.6", "libcrmcluster-dev": "1.1.14-2ubuntu1.6", "pacemaker-remote-dbgsym": "1.1.14-2ubuntu1.6", "libstonithd2-dbgsym": "1.1.14-2ubuntu1.6", "libcrmcluster4": "1.1.14-2ubuntu1.6", "pacemaker-remote": "1.1.14-2ubuntu1.6", "libpe-status10-dbgsym": "1.1.14-2ubuntu1.6", "libcrmcommon3-dbgsym": "1.1.14-2ubuntu1.6", "libstonithd-dev": "1.1.14-2ubuntu1.6", "liblrmd-dev": "1.1.14-2ubuntu1.6", "pacemaker-common": "1.1.14-2ubuntu1.6", "libcib-dev": "1.1.14-2ubuntu1.6", "liblrmd1": "1.1.14-2ubuntu1.6", "libcrmservice-dev": "1.1.14-2ubuntu1.6", "pacemaker": "1.1.14-2ubuntu1.6", "pacemaker-doc": "1.1.14-2ubuntu1.6", "libtransitioner2": "1.1.14-2ubuntu1.6", "libcrmservice3": "1.1.14-2ubuntu1.6", "libstonithd2": "1.1.14-2ubuntu1.6", "libpe-rules2-dbgsym": "1.1.14-2ubuntu1.6", "libpengine10-dbgsym": "1.1.14-2ubuntu1.6", "libpe-rules2": "1.1.14-2ubuntu1.6", "libpengine10": "1.1.14-2ubuntu1.6", "pacemaker-resource-agents": "1.1.14-2ubuntu1.6", "libcrmservice3-dbgsym": "1.1.14-2ubuntu1.6", "libcib4-dbgsym": "1.1.14-2ubuntu1.6", "libcrmcluster4-dbgsym": "1.1.14-2ubuntu1.6", "pacemaker-cli-utils": "1.1.14-2ubuntu1.6", "libtransitioner2-dbgsym": "1.1.14-2ubuntu1.6", "liblrmd1-dbgsym": "1.1.14-2ubuntu1.6", "libcrmcommon-dev": "1.1.14-2ubuntu1.6", "libcib4": "1.1.14-2ubuntu1.6", "pacemaker-cli-utils-dbgsym": "1.1.14-2ubuntu1.6" } ] }
{ "availability": "No subscription required", "binaries": [ { "libcrmcommon3": "1.1.18-0ubuntu1.1", "libpe-status10": "1.1.18-0ubuntu1.1", "pacemaker-dbgsym": "1.1.18-0ubuntu1.1", "libpengine-dev": "1.1.18-0ubuntu1.1", "libcrmcluster-dev": "1.1.18-0ubuntu1.1", "pacemaker-remote-dbgsym": "1.1.18-0ubuntu1.1", "libstonithd2-dbgsym": "1.1.18-0ubuntu1.1", "libcrmcluster4": "1.1.18-0ubuntu1.1", "pacemaker-remote": "1.1.18-0ubuntu1.1", "libpe-status10-dbgsym": "1.1.18-0ubuntu1.1", "libcrmcommon3-dbgsym": "1.1.18-0ubuntu1.1", "libstonithd-dev": "1.1.18-0ubuntu1.1", "liblrmd-dev": "1.1.18-0ubuntu1.1", "pacemaker-common": "1.1.18-0ubuntu1.1", "libcib-dev": "1.1.18-0ubuntu1.1", "liblrmd1": "1.1.18-0ubuntu1.1", "libcrmservice-dev": "1.1.18-0ubuntu1.1", "pacemaker": "1.1.18-0ubuntu1.1", "pacemaker-doc": "1.1.18-0ubuntu1.1", "libtransitioner2": "1.1.18-0ubuntu1.1", "libcrmservice3": "1.1.18-0ubuntu1.1", "libstonithd2": "1.1.18-0ubuntu1.1", "libpe-rules2-dbgsym": "1.1.18-0ubuntu1.1", "libpengine10-dbgsym": "1.1.18-0ubuntu1.1", "libpe-rules2": "1.1.18-0ubuntu1.1", "libpengine10": "1.1.18-0ubuntu1.1", "pacemaker-resource-agents": "1.1.18-0ubuntu1.1", "libcrmservice3-dbgsym": "1.1.18-0ubuntu1.1", "libcib4-dbgsym": "1.1.18-0ubuntu1.1", "libcrmcluster4-dbgsym": "1.1.18-0ubuntu1.1", "pacemaker-cli-utils": "1.1.18-0ubuntu1.1", "libtransitioner2-dbgsym": "1.1.18-0ubuntu1.1", "liblrmd1-dbgsym": "1.1.18-0ubuntu1.1", "libcrmcommon-dev": "1.1.18-0ubuntu1.1", "libcib4": "1.1.18-0ubuntu1.1", "pacemaker-cli-utils-dbgsym": "1.1.18-0ubuntu1.1" } ] }